-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sat, 22 Dec 2007 13:42:01 +0000 Source: util-linux Binary: util-linux cfdisk-udeb fdisk-udeb util-linux-locales bsdutils mount Architecture: source i386 all Version: 2.12r-19etch1 Distribution: stable-security Urgency: high Maintainer: LaMont Jones <lamont@debian.org> Changed-By: Steffen Joeris <white@debian.org> Description: bsdutils - Basic utilities from 4.4BSD-Lite cfdisk-udeb - Partition a hard drive (cfdisk) (udeb) fdisk-udeb - Partition a hard drive (manual) (udeb) mount - Tools for mounting and manipulating filesystems util-linux - Miscellaneous system utilities util-linux-locales - Locales files for util-linux Changes: util-linux (2.12r-19etch1) stable-security; urgency=high . * Non-maintainer upload by the security team * Fix privilege escalation by calling setuid() and setgid() in the wrong order and not checking the return values in mount and umount Fixes: CVE-2007-5191 Files: 66546d031256054335cee8f1537d497d 750 base required util-linux_2.12r-19etch1.dsc c261230b27fc0fbcc287c76884caf2d3 1992725 base required util-linux_2.12r.orig.tar.gz 258e5d0be4b6d58da2926840e91f80d8 103759 base required util-linux_2.12r-19etch1.diff.gz 498d39c18c17337f908cdb64457080fb 375214 utils required util-linux_2.12r-19etch1_i386.deb bf4c9b986448f79bde690f364675d45d 58012 debian-installer extra fdisk-udeb_2.12r-19etch1_i386.udeb 42713a8d2bfe66be61c4368f9297282e 483796 debian-installer extra cfdisk-udeb_2.12r-19etch1_i386.udeb c5b1383c8c6fe95fd5344c2e6a20a68f 157272 admin required mount_2.12r-19etch1_i386.deb 446b1ef1d65507eb4bb445b848669497 68548 utils required bsdutils_2.12r-19etch1_i386.deb ba17a075cf0cb2f76c58f6ca0dabc469 1086256 utils optional util-linux-locales_2.12r-19etch1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHbRZY62zWxYk/rQcRAuRWAKCXY0aMdp4nnD23Go5JL052AM7XGACdE7jH j7VOun0hbqMPRjl9T+PFNXI= =U+H5 -----END PGP SIGNATURE----- Accepted: bsdutils_2.12r-19etch1_i386.deb to pool/main/u/util-linux/bsdutils_2.12r-19etch1_i386.deb cfdisk-udeb_2.12r-19etch1_i386.udeb to pool/main/u/util-linux/cfdisk-udeb_2.12r-19etch1_i386.udeb fdisk-udeb_2.12r-19etch1_i386.udeb to pool/main/u/util-linux/fdisk-udeb_2.12r-19etch1_i386.udeb mount_2.12r-19etch1_i386.deb to pool/main/u/util-linux/mount_2.12r-19etch1_i386.deb util-linux-locales_2.12r-19etch1_all.deb to pool/main/u/util-linux/util-linux-locales_2.12r-19etch1_all.deb util-linux_2.12r-19etch1.diff.gz to pool/main/u/util-linux/util-linux_2.12r-19etch1.diff.gz util-linux_2.12r-19etch1.dsc to pool/main/u/util-linux/util-linux_2.12r-19etch1.dsc util-linux_2.12r-19etch1_i386.deb to pool/main/u/util-linux/util-linux_2.12r-19etch1_i386.deb